Cross-Site request forgery (CSRF) vulnerability in TMT Machine Industry and Trade Ltd. Co. Talassoft Industrial Management Software allows Cross Site Request Forgery. This issue affects Talassoft Industrial Management Software: from V.4 before V.16.
History

Wed, 02 Sep 2026 22:15:00 +0000

Type Values Removed Values Added
First Time appeared Tmt Machine
Tmt Machine talassoft Industrial Management Software
Vendors & Products Tmt Machine
Tmt Machine talassoft Industrial Management Software

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 15:15:00 +0000

Type Values Removed Values Added
Description Cross-Site request forgery (CSRF) vulnerability in TMT Machine Industry and Trade Ltd. Co. Talassoft Industrial Management Software allows Cross Site Request Forgery. This issue affects Talassoft Industrial Management Software: from V.4 before V.16.
Title CSRF in TMT Machine's Talassoft Industrial Management Software
Weaknesses CWE-352
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published: 2026-09-01T15:05:24.855Z

Updated: 2026-09-01T15:24:42.886Z

Reserved: 2026-08-04T07:52:35.364Z

Link: CVE-2026-18780

cve-icon Vulnrichment

Updated: 2026-09-01T15:24:04.115Z

cve-icon NVD

Status : Deferred

Published: 2026-09-01T15:17:13.200

Modified: 2026-09-01T21:10:38.413

Link: CVE-2026-18780

cve-icon Redhat

No data.